Vulnerability Description
On Moxa EDS-G508E, EDS-G512E, and EDS-G516E devices (with firmware through 6.0), denial of service can occur via PROFINET DCE-RPC endpoint discovery packets.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Moxa | Eds-G508E Firmware | <= 6.0 |
| Moxa | Eds-G508E | - |
| Moxa | Eds-G512E Firmware | <= 6.0 |
| Moxa | Eds-G512E | - |
| Moxa | Eds-G516E Firmware | <= 6.0 |
| Moxa | Eds-G516E | - |
References
- https://www.moxa.com/en/support/support/security-advisory/eds-g508e-g512e-g516e-Vendor Advisory
- https://www.moxa.com/en/support/support/security-advisory/eds-g508e-g512e-g516e-Vendor Advisory
FAQ
What is CVE-2019-19707?
CVE-2019-19707 is a vulnerability with a CVSS score of 7.5 (HIGH). On Moxa EDS-G508E, EDS-G512E, and EDS-G516E devices (with firmware through 6.0), denial of service can occur via PROFINET DCE-RPC endpoint discovery packets.
How severe is CVE-2019-19707?
CVE-2019-19707 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-19707?
Check the references section above for vendor advisories and patch information. Affected products include: Moxa Eds-G508E Firmware, Moxa Eds-G508E, Moxa Eds-G512E Firmware, Moxa Eds-G512E, Moxa Eds-G516E Firmware.